CVE List

Id CVE No. Status Description Phase Votes Comments Actions
69618  CVE-2014-2323  Candidate  SQL injection vulnerability in mod_mysql_vhost.c in lighttpd before 1.4.35 allows remote attackers to execute arbitrary SQL commands via the host name, related to request_check_hostname.  Assigned (20140312)  None (candidate not yet proposed)    View
4338  CVE-2001-1538  Candidate  SpeedXess HA-120 DSL router has a default administrative password of "speedxess", which allows remote attackers to gain access.  Assigned (20050714)  None (candidate not yet proposed)    View
69874  CVE-2014-2579  Candidate  Multiple cross-site request forgery (CSRF) vulnerabilities in XCloner Standalone 3.5 and earlier allow remote attackers to hijack the authentication of administrators for requests that (1) change the administrator password via the config task to index2.php or (2) when the enable_db_backup and sql_mem options are enabled, access the database backup functionality via the dbbackup_comp parameter in the generate action to index2.php. NOTE: vector 2 might be a duplicate of CVE-2014-2340, which is for the XCloner Wordpress plugin. NOTE: remote attackers can leverage CVE-2014-2996 with vector 2 to execute arbitrary commands.  Assigned (20140321)  None (candidate not yet proposed)    View
4594  CVE-2002-0202  Candidate  PaintBBS 1.2 installs certain files and directories with insecure permissions, which allows local users to (1) obtain the encrypted server password via the world-readable oekakibbs.conf file, or (2) modify the server configuration via the world-writeable /oekaki/ folder.  Proposed (20020502)  ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall    View
70130  CVE-2014-2835  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140410)  None (candidate not yet proposed)    View

Page 19835 of 20943, showing 5 records out of 104715 total, starting on record 99171, ending on 99175

Actions